> Markdown version of [/jobs/ext/1227550-senior-security-engineer-ai-model-and-application](https://www.wearedevelopers.com/jobs/ext/1227550-senior-security-engineer-ai-model-and-application). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer, AI Model and Application - **Company:** ImmunityBio - **Location:** Dunkirk, NY, United States - **Experience:** Expert - **Salary:** $135,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Training Data, Artificial Intelligence, Business Logic, Software Applications, User Authentication, Cyber Security, Information Leak Prevention, Network Topologies, Python (Programming Language), Machine Learning, Open Web Application Security, Security Information and Event Management, Systems Integration, Data Logging, Large Language Models, Multi-Agent Systems, Software Security, Rate Limiting, Information Technology, HuggingFace, Data Analytics, Machine Learning Operations, Api Design, GPT - **Published:** July 10, 2026 - **Apply:** https://nant.wd5.myworkdayjobs.com/ImmunityBio/job/Dunkirk-NY/Senior-Security-Engineer--AI-Model-and-Application_R2957 ## About the Role * Bachelor's degree in Computer Science, Information Security, Engineering, or a related field with 7+ years of relevant experience is required. * 5+ years of experience in application security, product security, or offensive security, including hands-on threat modeling and secure design for complex systems, is required. * Practical, demonstrated experience assessing or attacking AI/ML or LLM systems (e.g., prompt injection, model abuse, data exfiltration via LLMs, or adversarial examples) is required. * Experience working within or alongside regulated industries with compliance obligations (e.g., NIST AI RMF, SOC 2, ISO 27001) is preferred. * Experience with RAG pipelines, vector databases, or agent frameworks and their associated security risks is preferred. Knowledge, Skills, & Abilities * Excellent interpersonal skills and ability to work effectively in a cross-functional team environment spanning security, ML, and product disciplines. * Excellent technical writing, communication, and organizational skills, with the ability to translate complex security risks into clear trade-offs and actionable requirements for non-security stakeholders. * Strong proficiency in Python and familiarity with modern ML/LLM frameworks (e.g., LangChain, LlamaIndex, Hugging Face, OpenAI API). * Solid understanding of common web and API security vulnerabilities (OWASP, authentication and authorization, rate limiting, abuse prevention) and how they manifest in AI-powered applications and agents. * Strong knowledge of AI-specific threat frameworks including NIST AI RMF, OWASP LLM Top 10, and MITRE ATLAS. * Strong data analytics skills with experience integrating AI telemetry into security monitoring and detection workflows. * Strong leadership skills with the ability to drive security initiatives independently and mentor junior team members., * Regular work schedule is Monday - Friday, within standard business hours. Flexibility is available with manager approval. * Must possess mobility to work in a standard office setting and to use standard office equipment, including a computer. * Lift and carry materials weighing up to 30 pounds. This position is eligible for a discretionary bonus and equity award. The annual base pay range for this position is below. The specific rate will depend on the successful candidate's qualifications, prior experience as well as geographic location. ## Description The Senior Security Engineer AI Model and Application is a hands-on, systems-level role at the intersection of security engineering and artificial intelligence, involving close interaction with ML engineering, product, platform, and SOC/security operations teams. The Senior Security Engineer will serve as the subject matter expert (SME) in AI and LLM security across the organization, owning end-to-end security of AI systems - from data and training pipelines to inference endpoints and user-facing features. This role will support security leadership in driving threat modeling, adversarial testing, red teaming, and the implementation of secure-by-design AI features in alignment with applicable regulatory frameworks including NIST AI RMF, NIST CSF, and SOC 2 Type 2., * Design, implementation, and maintenance of security controls across the full AI/ML lifecycle, including training data validation, model registry policies, deployment guardrails, and production monitoring for anomalous model behavior. * Develop and maintain comprehensive threat models for AI/ML systems, covering prompt injection, data leakage, model evasion and extraction, data poisoning, and agent hijacking scenarios. * Lead red teaming and adversarial testing of LLMs and agentic workflows - including jailbreak attempts, prompt injection, output manipulation, and business logic abuse - and drive remediation with engineering teams. * Partner with ML engineers to embed security into model development pipelines, including secure training, evaluation, and deployment processes, as well as secure use of RAG architecture, tooling integrations, and multi-agent workflows. * Implement and define policies for safe prompt and response handling, including PII and sensitive content detection, output filtering, and usage logging to support investigations and compliance requirements. * Work with security engineering to integrate AI telemetry into SIEM, EDR, and SOC workflows; define and maintain runbooks for AI-related security incidents and forensic investigations. * Lead the creation, modification, and maintenance of AI security documentation, including threat model reports, security specification documents, SOPs, data flow diagrams, and network topology documentation. * Stay current on AI-specific attack techniques, emerging tooling, and relevant frameworks (NIST AI RMF, OWASP LLM Top 10, MITRE ATLAS, secure AI development guidelines) and translate findings into internal standards and controls. * Consult and collaborate with cross-functional SMEs across ML, Product, Platform Engineering, Legal, and Compliance to influence security design decisions and ensure operability and technical feasibility. * Provide technical mentoring and oversight to less experienced security engineers responding to and investigating AI-related security issues. * Create, edit, and adhere to Standard Operating Procedures (SOPs), security playbooks, and standardized documentation templates. * Perform ad-hoc and cross-functional projects assigned to support business needs and provide developmental opportunities. ## Related Videos - [API Design - Getting Started](https://www.wearedevelopers.com/videos/33-api-design-getting-started) - [ Evaluating AI models for code comprehension](https://www.wearedevelopers.com/videos/1462-evaluating-ai-models-for-code-comprehension) - [Prompt Injection, Poisoning & More: The Dark Side of LLMs](https://www.wearedevelopers.com/videos/1563-prompt-injection-poisoning-more-the-dark-side-of-llms) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Speak, Code, Deploy: Transforming Developer Experience with Voice Commands](https://www.wearedevelopers.com/videos/1159-speak-code-deploy-transforming-developer-experience-with-voice-commands) - [The AI Security Survival Guide: Practical Advice for Stressed-Out Developers](https://www.wearedevelopers.com/videos/1015-the-ai-security-survival-guide-practical-advice-for-stressed-out-developers) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [How to start an AI project for a good cause and boost your career](https://www.wearedevelopers.com/magazine/15-how-to-start-an-ai-project-for-a-good-cause-and-boost-your-career) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [MLOps And AI Driven Development](https://www.wearedevelopers.com/magazine/82-mlops-and-ai-driven-development)